| Posted | Nick | Remark | |
|---|---|---|---|
| #openstack-nova - 2018-11-21 | |||
| 22:42:22 | sean-k-mooney | cfriesen: it also got appoved in mitaka but i dont think they ever implmented it | |
| 22:44:19 | sean-k-mooney | actully they do http://git.openstack.org/cgit/openstack/compute-hyperv/tree/compute_hyperv/nova/vmops.py#n1334 | |
| 22:45:39 | cfriesen | sean-k-mooney: hadn't seen it. now I'm obligated to go check it out. :) | |
| 22:48:32 | cfriesen | what git tree is that? I don't see any use of "vtpm" in nova, so it seems like it was never implemented on the nova side. | |
| 22:48:58 | sean-k-mooney | its in openstack/compute-hyperv | |
| 22:49:52 | sean-k-mooney | https://github.com/openstack/compute-hyperv its still active aparently | |
| 22:50:24 | cfriesen | looks like it was superceded by https://blueprints.launchpad.net/nova/+spec/hyper-v-shielded-vms | |
| 22:52:57 | sean-k-mooney | im going to add thi to the reply i was sending to fungi on the ml | |
| 22:53:55 | cfriesen | was proposed late for ocata, but doesn't seem to have been re-proposed for pike | |
| 22:54:53 | sean-k-mooney | well hyperv had an out of tree driver just like power so i guess they did not need to reporpose to support it | |
| 23:14:10 | fungi | thanks for the details, sean-k-mooney! | |
| 23:18:14 | fungi | and yeah, in the future where hosts which have legit tpms can pass them through the hypervisor to guests, as long as it's apparent to the guest whether it's getting an actual tpm or an emulated one i think that's probably fine | |
| 23:19:08 | fungi | at least running the emulated tpm on the hypervisor is still a step up from running an emulated tpm inside the guest itself | |
| 23:22:16 | fungi | certainly an attacker with access to the host can clone and impersonate the tpm (unlike with a proper hardware one) but that's a higher barrier than compromising the guest | |
| 23:51:16 | openstackgerrit | Merged openstack/nova master: Use long_rpc_timeout in select_destinations RPC call https://review.openstack.org/607735 | |
| 23:55:45 | openstackgerrit | Merged openstack/nova stable/pike: Handle HostMappingNotFound when deleting a compute service https://review.openstack.org/583567 | |
| #openstack-nova - 2018-11-22 | |||
| 02:11:25 | openstackgerrit | Fan Zhang proposed openstack/nova master: Log disk transfer stats in live migration monitor. https://review.openstack.org/619395 | |
| 02:18:23 | openstackgerrit | Jason SUN proposed openstack/nova master: For instances end up in cell0, set its availability_zone to None. https://review.openstack.org/618737 | |
| 03:36:18 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Add live migration timeout action https://review.openstack.org/619143 | |
| 03:36:18 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Remove live_migration_progress_timeout config https://review.openstack.org/619142 | |
| 04:32:45 | openstackgerrit | Fan Zhang proposed openstack/nova master: Log disk transfer stats in live migration monitor. https://review.openstack.org/619395 | |
| 05:13:57 | openstackgerrit | Takashi NATSUME proposed openstack/nova master: Add a bug tag for nova doc https://review.openstack.org/619434 | |
| 05:17:55 | openstackgerrit | Merged openstack/python-novaclient master: Fix a type of block_device_mapping_v2 in a comment https://review.openstack.org/619145 | |
| 06:15:59 | openstackgerrit | Jason SUN proposed openstack/nova master: For instances end up in cell0, set its availability_zone to None. https://review.openstack.org/618737 | |
| 06:20:04 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Add live migration timeout action https://review.openstack.org/619143 | |
| 06:20:05 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Remove live_migration_progress_timeout config https://review.openstack.org/619142 | |
| 06:50:31 | openstackgerrit | Zhenyu Zheng proposed openstack/nova master: Bump compute service to indicate attach/detach root volume is supported https://review.openstack.org/614750 | |
| 07:17:27 | openstackgerrit | OpenStack Proposal Bot proposed openstack/nova stable/rocky: Imported Translations from Zanata https://review.openstack.org/614757 | |
| 08:51:06 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Add live migration timeout action https://review.openstack.org/619143 | |
| 08:51:06 | openstackgerrit | Yikun Jiang proposed openstack/nova master: Remove live_migration_progress_timeout config https://review.openstack.org/619142 | |
| 10:28:50 | openstackgerrit | Sylvain Bauza proposed openstack/nova master: libvirt: implement reshaper for vgpu https://review.openstack.org/599208 | |
| 11:38:01 | openstackgerrit | Jason SUN proposed openstack/nova master: For instances end up in cell0, set its availability_zone to None. https://review.openstack.org/618737 | |
| 11:40:45 | gary_perkins | Hi folks! General question about spinning up instances and storage: I have compute nodes with very little spare storage. Is it possible to confine all storage operations to go to Cinder? Even ephemeral storage and spinning up image-backed instances where normally local storage is allocated? Is this something flavors could handle or should handle? TIA | |
| 11:41:16 | Miouge | Is there a way to expose the compute node an instance is running on in metadata? I would have to do with DynamicJSON vendordata? | |
| 11:42:47 | gary_perkins | mriedem: Thanks for your help yesterday. The issue is still not resolved, but I'll have to return to it another time. | |
| 11:46:26 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Calculate RequestGroup resource provider mapping https://review.openstack.org/616239 | |
| 11:46:28 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Pass resource provider mapping to neutronv2 api https://review.openstack.org/616240 | |
| 11:46:30 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Send RP uuid in the port binding https://review.openstack.org/569459 | |
| 11:46:31 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Test boot with more ports with bandwidth request https://review.openstack.org/573317 | |
| 11:46:33 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Extend RequestGroup object for mapping https://review.openstack.org/619527 | |
| 11:46:35 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Fill the RequestGroup mapping during schedule https://review.openstack.org/619528 | |
| 11:46:37 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Recalculate request group - RP mapping during re-schedule https://review.openstack.org/619529 | |
| 12:00:43 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Transfer port.resource_request to the scheduler https://review.openstack.org/567268 | |
| 12:00:44 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Extend RequestGroup object for mapping https://review.openstack.org/619527 | |
| 12:00:46 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Calculate RequestGroup resource provider mapping https://review.openstack.org/616239 | |
| 12:00:48 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Fill the RequestGroup mapping during schedule https://review.openstack.org/619528 | |
| 12:00:50 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Pass resource provider mapping to neutronv2 api https://review.openstack.org/616240 | |
| 12:00:52 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Recalculate request group - RP mapping during re-schedule https://review.openstack.org/619529 | |
| 12:00:55 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Send RP uuid in the port binding https://review.openstack.org/569459 | |
| 12:00:57 | openstackgerrit | Balazs Gibizer proposed openstack/nova master: Test boot with more ports with bandwidth request https://review.openstack.org/573317 | |
| 12:37:05 | awalende | Does anyone know how I can troubleshoot oslo_timeouts exceptions in pre-live migrations? Only 1/5 migration attempts work, all others run in somekind of oslo messaging timeout: | |
| 12:37:22 | awalende | Pre live migration failed at blies: MessagingTimeout: Timed out waiting for a reply to message ID 359a5c51e98f4474ac | |
| 12:46:33 | mhen | awalende, we're experiencing the exact same thing in one of our infrastructures - we're still investigating but had no luck identifying the cause so far | |
| 12:51:36 | awalende | We tried to cram up some migration timeout values in nova.conf but I believe it has nothing to do with the migration itself. | |
| 12:52:52 | awalende | Don't know what exactly is happening in the pre-migration. Probably networking and maybe cinder stuff... | |
| 13:01:52 | sean-k-mooney | awalende: pre-migration has a number of check and we do wire up some of the networking on the destination | |
| 13:04:06 | sean-k-mooney | awalende: the timeout could be as a result of messages getting lost or connection issue btween the compute nodes and amqp | |
| 13:05:04 | sean-k-mooney | awalende: have you seen any log messages related to services reconnecting to rabbitmq that could indicate network issues | |
| 13:06:56 | awalende | sean-k-mooney, I have enabled debug logging on the compute nodes, but the only amqp related stuff is the timeOut-Exception itself. We are running HA rabbit on 3 Controllers, I'll check there for any further infos | |
| 13:17:40 | mhen | awalende, are you using persistent queues? | |
| 13:18:20 | awalende | we don't | |
| 13:18:49 | awalende | because we had often problems with split-brain issues on rabbit | |
| 13:20:36 | mhen | good to know, then we can rule that out as the culprit for now | |
| 15:07:23 | gary_perkins | Hi folks! General question about spinning up instances and storage: I have compute nodes with very little spare storage. Is it possible to confine all storage operations to go to Cinder? Even ephemeral storage and spinning up image-backed instances where normally local storage is allocated? Is this something flavors could handle or should handle? TIA | |
| 15:11:25 | mnaser | simple and clean backport if anyone is around -- https://review.openstack.org/#/c/619349/ | |
| 15:11:51 | artom | gary_perkins, I think you want boot from volume instances | |
| 15:22:26 | gary_perkins | artom: yes, but I want to transparently enforce the use of cinder volumes for all storage so that the compute nodes don't run out of their limited capacity | |
| 15:24:46 | gary_perkins | and by, transparently, I mean, I don't want users to have to create a bootable cinder volume prior to spinning up an instance | |
| 15:41:59 | gibi | gary_perkins: have you thought about mounting a cinder volume to each compute and use that space as nova's instance directory? | |
| 15:42:58 | gary_perkins | gibi: hmmm... that's an idea! | |
| 15:45:54 | gary_perkins | gibi: thanks! I wasn't sure one could do that. I'll give that a try! | |
| 16:25:17 | artom | gibi, can you do that? I would have thought that Cinder volumes (control plane) wouldn't be accessible from the data plane (tenants) | |
| 16:25:40 | artom | gary_perkins, there was a spec for flavor-enforced boot from volume | |
| 16:25:43 | artom | Lemme find it | |
| 16:25:57 | kashyap | Hi folks, wonder if anyone have the latest, minimal (only Nova, Keystone, Glance, Neutron) DevStack local.conf. | |
| 16:26:06 | kashyap | Currently I use: http://paste.openstack.org/show/735950/ | |
| 16:26:25 | artom | kashyap, wouldn't just putting enabled_services=blah be sufficient? | |
| 16:26:31 | artom | The defaults have worked for me | |
| 16:26:46 | kashyap | artom: That's what I do: ENABLED_SERVICES=g-api,g-reg,key,n-api,n-cpu,placement-api,n-sch,n-cond,mysql,rabbit,dstat,quantum,q-svc,q-agt,q-dhcp,q-l3,q-meta | |
| 16:27:05 | artom | kashyap, then I don't think you need anything else? | |
| 16:27:09 | kashyap | I don't want all the needless crap to be installed on the system. It's difficult to cut crap; but far easier to start minimal | |
| 16:27:57 | artom | gary_perkins, https://review.openstack.org/#/c/511965/ | |
| 16:27:59 | kashyap | artom: Yeah, that's what I normally go with. Writing up a bunch of scripts that setup live migration w/ non-shared storage from scratch in nested envs | |
| 16:28:19 | gary_perkins | thanks artom :) | |
| 16:28:21 | artom | gary_perkins, abandoned because of lack of operator/user interest. Perhaps you could be the one drumming up support ;) | |
| 16:30:24 | gibi | artom: as far as I understand cinder volumes passed to a VM are also attached to the compute host and then the resulting device is passed to the VM via libvirt | |
| 16:30:30 | gibi | artom: but I can be worng | |
| 16:30:31 | gibi | wrong | |
| 16:32:39 | artom | gibi, oh, right, yeah, I... I'm actually not sure what I understood from your idea | |
| 16:32:58 | artom | For some reason I thought the VMs would be mounting the volumes inside the guest OS | |
| 16:36:04 | jackding | jaypipes: Hi Jay, I have responded to your question on https://review.openstack.org/#/c/618542/ | |
| 16:38:06 | gibi | artom: my idea is to use cinder volumes as local disk providers for the compute host directlty | |
| 16:38:48 | artom | gibi, right, so you'd mount the nova instances directly over iscsi or NFS or whatever from the volume's connection_info | |
| 16:39:24 | artom | I guess? I'm not sure how supported that is. It seems weird to do that instead of deploying Ceph or something explicitly for this purpose | |
| 16:40:34 | gibi | artom: yeah deploy ceph would be the ideal solution, or using the cinder backend directly | |
| 16:40:59 | artom | gibi, actually yeah, why not just use Cinder's backend directly. | |
| 16:41:46 | artom | Hrmm, would there be a way to set a compute node's disk capacity to 0? | |
| 16:42:02 | artom | It wouldn't make boot from volume transparent, but it would at least prevent local storage from being used. | |
| 16:42:19 | gary_perkins | artom: +1 | |
| 16:43:11 | gary_perkins | yeah, I could just manually setup iscsid/tgt or user cinder. I just didn't know one could use cinder outside of OpenStack | |